What is claimed is: 

1 1. A process for certifying a software application prior to 

2 deployment, comprising the steps of: 

3 entering a review request for a software application into a 

4 staging database; 

5 assigning a reviewer and scheduling a time for said review; 

6 performing a readiness assessment prior to said time for said 

7 review; 

•rt8 conducting said review by said reviewer including providing an 

HJ9 overview and process flows identifying control points, providing 

glb-0 deliverables, and providing a test plan; 

ru 

-11 reporting results of said review; and 

Ll"2 determining whether said results justify a decision of 

□3 certification of said software application. 

1 2. The process of claim 1, wherein said review request is entered 

2 into a spreadsheet database. 

1 3. The process of claim 1, wherein said readiness assessment is 

2 performed by answering questions in a checklist. 
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1 4. The process of claim 1, wherein said overview comprises an 

2 application environmental overview and an architectural overview. 

1 5. The process of claim 1, wherein said process flows comprise 

2 flowcharts. 

1 6. The process of claim 5, wherein said flowcharts identify the 

2 position of automated or manual control points within the 

3 software application. 

1 7. The process of claim 5, wherein said control points include 

2 text describing actions to be taken for normal and exception 
p3 control outcome. 

^1 8. The process of claim 1, wherein said review includes a 

gi2 separation of duties evaluation. 

03 

- 1 9. The process of claim 1, wherein said review includes an 

'ssh 

Wl evaluation of control points that prevent unauthorized change to 

^3 said software application. 

few 

1 10. The process of claim 1, wherein said test plan describes test 

2 scenarios and expected results for all said control points. 

1 11. The process of claim 1, wherein said review further comprises 

2 providing a demonstration. 
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1 12 . A process for certifying a software application, comprising 

2 the steps of: 

3 entering a review request for a software application into a 

4 staging database; 

5 assigning a reviewer and scheduling a time for said review; 

6 performing a readiness assessment prior to said time for said 

7 review; 

8 conducting said review by said reviewer including providing an 
□9 overview and process flows identifying control points, providing 
JK) deliverables, and providing a test plan; 

F5 : 

-311 reporting results of said review; 

f 12 determining whether said results justify a decision of 

j43 certification of said software application, and if so; 

ni 
ljj 

G|4 deploying said software application; and 

: "s 

15 executing at least a part of said test plan. 

1 13. The process of claim 12, wherein said review further 

2 comprises providing a demonstration. 
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1 14. A computer program product for instructing a processor to 

2 certify a software application, said computer program product 

3 comprising: 

4 a computer readable medium; 

5 first program instruction means for entering a review request for 

6 a software application into a staging database; 

7 second program instruction means for assigning a reviewer and 

8 scheduling a time for said review; 

C39 third program instruction means for performing a readiness 

v|0 assessment prior to said time for said review; 

: : s 

ffll fourth program instruction means for assisting said reviewer in 

ry 

p|2 conducting said including assisting in providing an overview and 

[13 process flows identifying control points, assisting in providing 

W4 deliverables, and assisting in providing a test plan; 

i : : 

j:f5 fifth program instruction means for reporting results of said 

16 review; and 

17 sixth program instruction means for determining whether said 

18 results justify a decision of certification of said software 

19 application; and wherein 

20 all said program instruction means are recorded on said medium. 
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